Linux Landlock is a kernel-native security module that lets unprivileged processes sandbox themselves - but nobody uses it because the API is ... hard!

Landlock 은 처음들어봤는데 흥미롭네요